Subject: CVS commit: pkgsrc/print/xpdf
To: None <pkgsrc-changes@netbsd.org>
From: Simon Burge <simonb@netbsd.org>
List: pkgsrc-changes
Date: 06/18/2003 14:47:22
Module Name: pkgsrc
Committed By: simonb
Date: Wed Jun 18 14:47:21 UTC 2003
Modified Files:
pkgsrc/print/xpdf: Makefile distinfo
Log Message:
Update to version 2.02pl1. From the xpdf website:
This version includes a small patch that fixes a security hole in
version 2.02. It was possible to construct a malicious URL link in a
PDF file which would cause an arbitrary command to be run. The patch
changes things to that the various characters which can cause trouble
are escaped (%xx) before calling system(). This patch also changes the
"launch" link verification dialog to provde a scrolling view of the
command about to be run when the command string is excessively long.
To generate a diff of this commit:
cvs rdiff -r1.19 -r1.20 pkgsrc/print/xpdf/Makefile
cvs rdiff -r1.11 -r1.12 pkgsrc/print/xpdf/distinfo
Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.